[skip to main content]

Online Security

Just Beauty Direct  take security of our on-line systems very seriously. We use PROTX, a division of SAGE as our Payment Service Provider. They are a leading Payment Service Provider, thousands of businesses outsource their transaction security to Protx and it is their top priority to ensure that transaction data is kept secure at all times. For all online transactions, Just Beauty Direct do not have access to your credit card information; all this information is held encrypted by Protx VSP systems.

Mastercard SecureCode
MasterCard SecureCode is a simple and secure way to pay at thousands of online stores. A private code known only to you and your bank, your SecureCode enhances your existing MasterCard account by protecting you against unauthorized use of your card when shopping online at participating online retailers.

Verified by Visa

To give you even more confidence in shopping online you can sign up for 'Verified by Visa', a free service that protects your card details with your own personalised password.

Verified by Visa protects your existing Visa card with a password you create, giving assurance that only you can use your Visa card online. Simply activate your card and create a personal password. Signing up is quick and simple and you can use your existing card. You can use 'Verified by Visa' at many other web sites that have recognised the benefits of this service.

Transaction security
All transaction information passed between Just Beauty Direct and the Protx VSP Systems is encrypted using 128-bit SSL certificates. No cardholder information is ever passed unencrypted and any messages sent to your servers from Protx are signed using MD5 hashing to prevent tampering. You can be completely secure in the knowledge that nothing you pass to the Protx servers can be examined, used or modified by any third parties attempting to gain access to sensitive information.

Encryption and Data Storage
Once on Protx systems, all sensitive data is secured using the same internationally recognised 256-bit encryption standards used by, among others, the US Government. The encryption keys are held on state-of-the-art, tamper proof systems in the same family as those used to secure VeriSign's Global Root certificate, making them all but impossible to extract. The data Protx hold is extremely secure and they are regularly audited by the banks and banking authorities to ensure it remains so.

Links to banks
Protx has multiple private links into the banking network that are completely separate from the Internet and which do not cross any publicly accessible networks. Any cardholder information sent to the banks and any authorisation message coming back is secure and cannot be tampered with.

Employee access
No individuals within Protx are able to decrypt transaction information or cardholder data. Protx systems only allow access to our most senior staff and only in extenuating circumstances (such as investigations of Card Fraud by the Police). Your transaction information and customer card information is secure even from our own employees because our systems never display the full card numbers, even on administration screens.

Protx has achieved the highest level of compliance under the Payment Card Industry Data Security Standard (PCI).